OneCRL Entry
7372a1f0-cb36-4ecc-845f-4fe230d3b415
Revocation Entry
- Status
- disabled
- Serial
7AFB334F1853CDF1B296DCF0F3D2B67C- Last Modified
- 2022-03-24 18:06:20 UTC
- Schema
- 1648054860946
Issuer
- DN
- OU=GlobalSign Root CA - R3, O=GlobalSign, CN=GlobalSign
- DN SHA-256
5bdab67a96c25c9b087f12e81ed40d23384becf64c4a37f50048191cc2427590- Issuer DER
MEwxIDAeBgNVBAsTF0dsb2JhbFNpZ24gUm9vdCBDQSAtIFIzMRMwEQYDVQQKEwpHbG9iYWxTaWduMRMwEQYDVQQDEwpHbG9iYWxTaWdu
Context
- Bugzilla
- 1761053
- Action
- On 2022-03-23, c**********l@bots.tld created a bug and proposed 15 disabled OneCRL issuer/serial additions based on revoked intermediate certificates reported in the CCADB; Dana Keeler approved staging on 2022-03-24 and production later that day.
- Confidence
- Explicit in OneCRL thread · 0.98
CCADB Link
- Issuer CA
- GlobalSign
- CA Owner
- GlobalSign nv-sa
AI Summary
Generated 2026-06-30 11:41 UTC · Model: gpt-5.4-miniThis bug added 15 OneCRL entries, all disabled, corresponding to revoked intermediate certificates reported in the CCADB. The additions were generated by the ccadb2onercl bot and then reviewed by Mozilla security staff. Kathleen Wilson explicitly confirmed the entries were correct and said TLS Canary was not needed for this batch. Dana Keeler approved the changes in Kinto staging and then in production, after which the bug was resolved FIXED. The thread does not state a specific CCADB revocation field or candidate-report state beyond the fact that the certificates were revoked in CCADB. The thread also does not name a separate external compliance incident or CA closure as the cause; only the CCADB revocation report is explicitly cited.
On 2022-03-23, c**********l@bots.tld created a bug and proposed 15 disabled OneCRL issuer/serial additions based on revoked intermediate certificates reported in the CCADB; Dana Keeler approved staging on 2022-03-24 and production later that day.
Explicitly stated trigger: revoked intermediate certificates reported in the CCADB; no specific revocation field, candidate-report state, or manual-addition rationale is stated.
Unknown / not stated; the thread only references CCADB-reported revocation and does not identify a separate compliance incident, root program report, m.d.s.p. thread, or CA closure.
Explicit in OneCRL thread · 0.98
- 2022-03-23c**********l@bots.tld opened bug 1761053 and proposed OneCRL additions based on revoked intermediate certificates reported in CCADB.
- 2022-03-23Kathleen Wilson confirmed the entries were correct and said TLS Canary was not needed.
- 2022-03-24Dana Keeler approved the changes in Kinto staging.
- 2022-03-24Dana Keeler approved the changes in production.
- 2022-03-24Bug 1761053 was resolved FIXED.
AI-generated from the OneCRL record and linked Bugzilla thread. Mozilla and CCADB records remain authoritative.
Raw Remote Settings Record
{
"schema": 1648054860946,
"details": {
"bug": "https://bugzilla.mozilla.org/show_bug.cgi?id=1761053",
"who": "",
"why": "",
"name": "",
"created": ""
},
"enabled": false,
"issuerName": "MEwxIDAeBgNVBAsTF0dsb2JhbFNpZ24gUm9vdCBDQSAtIFIzMRMwEQYDVQQKEwpHbG9iYWxTaWduMRMwEQYDVQQDEwpHbG9iYWxTaWdu",
"serialNumber": "evszTxhTzfGyltzw89K2fA==",
"id": "7372a1f0-cb36-4ecc-845f-4fe230d3b415",
"last_modified": 1648145180730
}